James has mentioned a pretty interesting trend in his post, Predictive analysis. I wanted to add the neat diagrams I came across and hence I am adding a new post rather than commenting. And as I understand since […]

Kill Chain is a military concept relating to the structure of launching an attack. The word chain comes from the fact that if the process or steps are broken at a stage the model the entire model breaks. It is a […]

I did some research on how easy or hard it is to spoof someone’s phone number and let you believe that you are getting a call from someone at your office, a future recruiter, a person you know friend or r […]

I had never really considered this until reading your post. I could see this being a valuable tool for debt collectors. Since laws have been passed that now penalize debt collectors if they contact your place of employment or your neighbors they have had to find other more creative ways to contact and/or harass their targets. Since debt collectors know they will likely face avoidance when contacting the debtors they would find a lot of value in using this easy spoofing technology. I could see marketers finding this type of tool valuable as well since many people avoid unfamiliar numbers. This type of tool, and its uses, would be most beneficial with a list of known numbers associated with the target so a number is used that increases the likelihood of being answered.

Nice post, Priya. I think you shared you experience with phone number spoofing this week, which i thought was quite dangerous, honestly. I was researching if there are any methods/applications through which we can protect ourselves from such ordeal but unfortunately all my research pointed me towards making our brains scam-proof. What I mean by that is just making a habit to not conduct any business over the phone and always restrict yourself from giving your personal information to the caller. Some of the red-flags are the IRS Scam calls, since IRS will never call you and it’s just another scare tactic. There are also red flags right, someone offering you a deal that is too good to be true or by using words like “Don’t miss out or hurry up!” I think we just have to make a personal rule that if you are not sure of the caller’s identity just tell him/her that you will call back.

TBML is most sophisticated means of cleaning dirty money. IT is a way to legitimate the illicit origins. People involved in this scheme use a legitimate business or trade to disguise the criminal act. Simple […]

Organisations reports breaches and invests time, talent and millions of dollars to investigate the fraud. This is not a one off activity but a continuous improvement process. A model to investigation reporting and […]

Nice post Priya. Regarding the flow diagram point, I’m totally agree that having very clear and comprehensive flowchart that represent the workflow in an organization is very helpful way to detect and prevent the fraud since this workflow is comprised of the set of process it needs to accomplish connected with the people who responsible to perform those process, and the interaction among them. Thus, this will assist to discover the errors and the person who make it occur.

Nicely said Priya, I really like that you mentioned that every breach is a learning. Indeed, the least companies can do is to learn lessons from incidents to help ensure the same thing doesn’t happen again. Additionally, it is really important to detect breaches early in the process to minimize losses. I believe businesses must build a system that can automatically detect every form of attack and fully be prepared.

Nice post Priya, apart from what you mentioned, I believe that the adaptability is also one essential part of a successful fraud investigation. After making a plan, and then you make sure the plan is carried out. You will almost certainly have to change the plan as you go along. Perhaps an even better analogy is a military campaign, as in war, success goes to the side which adapts best when circumstances change or things go wrong.

I agree with you Yu Ming. Depth and impact are both are supportive of each other. The speed with which new technology emerges is so fast that while gaining depth of one technology world moves to another. I do not know what is the best solution but I believe experience teaches it all. Hence before making a new technology active in the business, it…[Read more]

Good point Annamarie. I have mentioned in my post that transition to new technology must be smooth, and thus the impact will be managed. Any new technology will have similarities with what employees are familiar with. Organization can make a choice of smooth transition. It is also necessary to help by giving time and exposure to the new technology…[Read more]

Hi Candace, Thank you for providing links to interesting articles, I read a few of them and Meyer in his article mentions that switching between activities will prove a hindrance in productivity.
However, I feel today’s tasks, professional activities, machine usage requires multitasking. Our brain is adaptable and is hopefully adapting to this…[Read more]

IT audit values independent skilled assessment of risks and controls. As an IT auditor it is important that you evolve as the industry is evolving. True traits of an auditor are clearly seen through the auditor’s experience, education and most of all his behavior traits as a human being. Ed Gelbstein, Ph.D.in his article “Is there such a thing as…[Read more]

Great post Magaly. The Lazy type can yield a absolute wrong result. They would be dependent on previous documentation, or worst the previous report and do a copy paste.
However with this kind, the audit report reviewer or senior auditor will easily catch hold of him and his mistakes. It is very difficult to justify why have you included an…[Read more]

Great post Candace! I totally agree with your comments about the Stress creator type.
According to study conducted by Richard Lazarus, stress goes to various appraisal levels and influences specific type of performance. At secondary appraisal, the person begins to think what he can do his best to lower the stress. A moderate level stress in fact…[Read more]